Re: Additional Information on Apache Tomcat CVE-2018-8037

2019-10-01 Thread Martin Cocaro
ch...@christopherschultz.net> wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA256 > > Martin, > > On 10/1/19 12:15, Martin Cocaro wrote: > > Thank you Chris for the answer. The EOL date and its policy made > > me wonder if the CVE was tested it against that version. > &

Re: Additional Information on Apache Tomcat CVE-2018-8037

2019-10-01 Thread Martin Cocaro
< ch...@christopherschultz.net> wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA256 > > Martin, > > On 10/1/19 10:35, Martin Cocaro wrote: > > Apache Tomcat Users Team, > > > > The purpose of this email is to request information regarding

Re: Additional Information on Apache Tomcat CVE-2018-8037

2019-10-01 Thread Martin Cocaro
Thank you for the confirmation! Much appreciated. On Tue, Oct 1, 2019 at 12:46 PM Mark Thomas wrote: > > Martin, > > > > On 10/1/19 10:35, Martin Cocaro wrote: > >> Apache Tomcat Users Team, > > > >> The purpose of this email is to request information

Additional Information on Apache Tomcat CVE-2018-8037

2019-10-01 Thread Martin Cocaro
Apache Tomcat Users Team, The purpose of this email is to request information regarding Apache Tomcat CVE-2018-8037 possibly affecting version 8.0.X (particularly 8.0.53). The CVE was made public on 22-July-2018, after being privately disclosed on 16